Skip to content

Security vulnerabilities in dependencies (spring-security-web, netty, bcpkix) #592

@Codutie04

Description

@Codutie04

Summary

Several project dependencies contain known security vulnerabilities, including at least one critical issue in spring-security-web. These vulnerabilities are marked as exploitable and should be addressed by upgrading to patched versions.


Affected dependencies

🔴 Critical

  • spring-security-web - 6.4.13

    • (Critical vulnerability)

🟠 High

🟡 Medium


Additional context

These issues were identified via GitHub security advisories and are flagged as exploitable as of April 2026.


Question

Would you be open to upgrading these dependencies?


Many thanks for a feedback.

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions